Fedora Account System
Red Hat Associate
Red Hat Customer
In the Linux kernel, the following vulnerability has been resolved: KVM: s390: vsie: zero stale crypto bits When shadowing crypto access bits from a format0 apcb (crycb 0 or 1), the bits 64..255 are unchanged from whatever is in the vsie page in the crycb and thus in the apcb. This gives a nested guest potential access to a device no longer available. Zero out the remaining bits.
Upstream advisory: https://git.kernel.org/pub/scm/linux/security/vulns.git/plain/cve/published/2026/CVE-2026-80921.mbox
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:75746 https://access.redhat.com/errata/RHSA-2026:75746
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:75747 https://access.redhat.com/errata/RHSA-2026:75747
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2026:76738 https://access.redhat.com/errata/RHSA-2026:76738